CVE-2017-20229
EUVD-2017-1895128.03.2026, 12:16
MAWK 1.3.3-17 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can craft malicious input that overflows the stack buffer and execute a return-oriented programming chain to spawn a shell with application privileges.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| invisible-island | mawk | 𝑥 ≤ 1.3.3-17 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration